Cloudflare Deprecates Azure Functions‑Based Microsoft Sentinel Connector – Migration to CCF Required by Sep 14 2026

What’s changing? Cloudflare (vendor claim) will stop maintaining the Azure Functions‑based Microsoft Sentinel connector on . The change follows Microsoft’s deprecation of the Azure Monitor HTTP Data Collector API, which also ends support on the same day.

Who is affected? The notice applies to Cloudflare Enterprise customers who currently use the Azure Functions‑based connector to push Logpush logs into Microsoft Sentinel.

Required action (vendor claim): Migrate to the Cloudflare for Microsoft Sentinel Codeless Connector Framework (CCF) connector no later than the September 14 deadline.

The migration steps are outlined in the Microsoft Sentinel integration setup guide. Additional resources include the downloadable CCF Sentinel Solution, a Microsoft Sentinel data lake overview, and documentation about the CCF platform.

Why the shift? Microsoft is retiring the Azure Monitor HTTP Data Collector API, which the Azure Functions‑based connector relies on. By moving to CCF, customers gain a codeless, Azure‑agnostic integration that aligns with Microsoft’s current data ingestion pathways.

Next steps for customers:

  1. Review the migration guide linked above.
  2. Download and deploy the CCF Sentinel Solution.
  3. Validate log flow into Microsoft Sentinel before the cut‑off date.
  4. Decommission the Azure Functions‑based connector after successful migration.

Failure to migrate by the deadline will result in loss of log ingestion from Cloudflare to Microsoft Sentinel.